In the Linux kernel, the following vulnerability has been resolved:
usb: ucsi: Fix NULL pointer deref in ucsi_connector_change()
When ucsi_init() fails, ucsi->connector is NULL, yet in case of ucsi_acpi we may still get events which cause the ucs_acpi code to call ucsi_connector_change(), which then derefs the NULL ucsi->connector pointer.
Fix this by not setting ucsi->ntfy inside ucsi_init() until ucsi_init() has succeeded, so that ucsi_connector_change() ignores the events because UCSI_ENABLE_NTFY_CONNECTOR_CHANGE is not set in the ntfy mask.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | May 5, 2025 | May 2, 2025 |
| Huawei Euleros 2_0_sp13 | — | Upgrade python3-perfUpgrade kernel-abi-stablelistsUpgrade kernel-toolsUpgrade kernelUpgrade kernel-tools-libsUpgrade bpftool | Sep 25, 2025 | Sep 15, 2025 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | May 2, 2025 |
| Ubuntu | — | Upgrade linux-awsUpgrade linux-nvidia-tegraUpgrade linux-ibm-5.15Upgrade linux-gkeUpgrade linux-bluefieldUpgrade linux-hwe-5.15Upgrade linux-azureUpgrade linux-aws-5.15Upgrade linux-raspiUpgrade linux-nvidia-tegra-5.15Upgrade linux-realtimeUpgrade linux-lowlatency-hwe-5.15Upgrade linux-gcp-5.15Upgrade linux-intel-iotg-5.15Upgrade linux-oracleUpgrade linux-oracle-5.15Upgrade linux-intel-iot-realtimeUpgrade linux-azure-5.15Upgrade linux-kvmUpgrade linux-lowlatencyUpgrade linux-nvidia-tegra-igxUpgrade linux-ibmUpgrade linuxUpgrade linux-intel-iotgUpgrade linux-riscv-5.15Upgrade linux-xilinx-zynqmpUpgrade linux-gkeopUpgrade linux-nvidiaUpgrade linux-gcp | May 8, 2025 | May 2, 2025 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | May 27, 2026 | May 2, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub